Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 30 Apr 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:h:tenda:4g300:-:*:*:*:*:*:*:* cpe:2.3:o:tenda:4g300_firmware:1.01.42_cn_tdc01:*:*:*:*:*:*:* |
Thu, 30 Apr 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 30 Apr 2026 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda 4g300
|
|
| Vendors & Products |
Tenda 4g300
|
Thu, 30 Apr 2026 02:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was detected in Tenda 4G300 US_4G300V1.0Mt_V1.01.42_CN_TDC01. This impacts the function sub_425A28 of the file /goform/DelFil. The manipulation of the argument delflag results in command injection. The attack may be launched remotely. The exploit is now public and may be used. | |
| Title | Tenda 4G300 DelFil sub_425A28 command injection | |
| First Time appeared |
Tenda
Tenda 4g300 Firmware |
|
| Weaknesses | CWE-74 CWE-77 |
|
| CPEs | cpe:2.3:o:tenda:4g300_firmware:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Tenda
Tenda 4g300 Firmware |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-04-30T13:44:18.276Z
Reserved: 2026-04-29T19:21:10.675Z
Link: CVE-2026-7469
Updated: 2026-04-30T13:44:03.176Z
Status : Analyzed
Published: 2026-04-30T02:16:06.967
Modified: 2026-04-30T20:41:35.710
Link: CVE-2026-7469
No data.
OpenCVE Enrichment
Updated: 2026-05-01T05:30:09Z